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(54) Methods and apparatus for upgrading firmware in an embedded system 



(57) The present invention provides methods and 
apparatus for upgrading firmware in an embedded sys- 
tem, without impacting the system. More specifically, the 
present invention enables an embedded system to be 
upgraded without any system downtime, by providing 
two application areas in non-volatile programmable 
read only memory. A processor can boot up and run from 



either application area. A fixed vector table is provided, 
which, in cooperation with a software vector table, ena- 
bles the processor to maintain proper Interrupt vector 
addresses while being able to run from either application 
area. Upgraded finnware can be loaded into one appli- 
cation area while the system is running from the other 
application area. Resetting the processor allows the 
system to run the upgraded version of firmware. 
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Description 

BACKGROUND OF THE INVENTION 

[0001] The present invention relates generally to em- 
bedded systems. In particular, the present invention pro- 
vides methods and apparatus for upgrading firmware in 
an embedded system, without Impacting the system. 
More specifically, the present invention enables an em- 
bedded system to be upgraded without any system 
downtime, by providing two banks of memory (applica- 
tion areas) in non-volatile programmable read only 
memory. A processor can boot up and run from either 
application area. A fixed vector table is provided, which, 
in cooperation with a software vector table, enables the 
processor to maintain proper interrupt vector addresses 
while being able to run from either application area. Up- 
graded firmware can be loaded into one application area 
while the system is running from the other application 
area. Resetting the processor allows the system to run 
the upgraded version of firmware. 
[0002] A conventional embedded system is made up 
of three parts. A processor to ru n the code, a non-volatile 
memory to store the code, and a volatile memory to 
store data and temporary infonnation the code uses. In 
most systems the volatile memory is random access 
memory (RAM) and the non-volatile memory is pro- 
grammable read only memory (PROM). Variations of the 
PROM are the erasable programmable read only mem- 
ory (EPROM) and the electrically erasable programma- 
ble read only memory (EEPROM). The processor could 
be any one of the thousands of commercially available 
parts chosen to suit the needs of the designer 
[0003] A number of years ago a new EPROM varia- 
tion was developed, called flash electrically erasable 
programmable read only memory, or FLASH. FLASH 
provided fast re-programmability. FLASH was embed- 
ded in many systems to enable a user to reload code 
and to change the system to make improvements or bug 
fixes. 

[0004] In a prior art embedded system developed by 
General Instrument Corporation of Horsham, Pennsyl- 
vania, USA, the assignee of the present invention, 
FLASH memory was used to enable quicker system up- 
grades. In this prior art embedded system, the FLASH 
memory was partitioned into two parts. The first half of 
FLASH was loaded with the present version of firmware. 
If an upgrade was required, the second half of FLASH 
was erased and loaded with a new version of firmware. 
The unit could then be reset and the code now operated 
out of the second half of FLASH. If a newer version of 
firmware was required the process could be repeated 
over and over again, always reloading the second half 
of FLASH and keeping the first half of FLASH as a fail- 
safe backup copy of the finmware. 
[0005] The above process was accomplished by hav- 
ing an additional RAM on the circuit board. When the 
unit is first started, the processor checks a non-volatile 



memory location to determine which-half-to load from. 
It then loads the RAM from the selected section of the 
FLASH. The processor from this point on uses the RAM 
for code storage and data storage. This enabled the 
5 FLASH to be reprogrammed while the system was run- 
ning. However, to facilitate this copying and reprogram- 
mtng. additional circuitry was required on the board to: 
1) control the addressing of the FLASH and RAM; 2) 
control the addressing of extemal data ports; and 3) con- 
to trol the location of the inten^upt vector table (vector ta- 
ble). As a result, the parts count and board space re- 
quirements of such a system were increased. 
[0006] The vector table holds the addresses of all the 
interrupt service routines (ISR). These ISRs are critical 
^5 to the functioning of a system. An example of an ISR 
would be a timer or a clock. At predefined intervals the 
clock or timer expires and a register that maintains the 
time must be updated. This must happen quickly. If a 
register is not updated quickly, the clock would be wrong 
20 or a predefined event would not occur, causing an error 
The way a computer insures that these kinds of errors 
do not occur is by using interrupts. An inten-upt is a sig- 
nal that interrupts the normal flow of instructions. For 
example, when a timer expires, a hardware interrupt is 
generated. The computer then jumps to a predefined 
address and executes the code at that point. The code 
at that point is called an ISR. These routines are very 
concise. After the ISR is executed, the code then returns 
to the point it was at before the interrupt occurred. The 
predefined address that the hardware jumps to when an 
interrupt is generated is maintained in the vector table. 
Each interrupt must have an entry in the vector table. In 
some systems the vector table is fixed to a certain loca- 
tion in the memory map. In others, it can be relocated 
by software. 

[0007] In systems where the vector table Is a fixed 
vector table, problems arise when the processor is pro- 
vided with the ability to toad from two different banks of 
code which may be running two different versions of 
fimnware. Because the ISR's starting address could be 
different in each version of firmware, the entries in the 
vector table would be different. 
[0008] It would be advantageous to be able to run 
firmware from either bank of memory while still main- 
taining the fixed vector table. It would also be advanta- 
geous to provide a fixed vector table that is adaptable 
to any future version of the firmware. It would be further 
advantageous to be able to upgrade the finmware in one 
bank of memory while the system is running, without im- 
pacting the system perfonmance. It would be even fur- 
ther advantageous to provide the above advantages in 
a single chip, thereby saving board space, reducing 
parts count, and reducing costs. 
[0009] The methods and apparatus of the present in- 
vention provide the aforesaid and other advantages. 
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SUMMARY OF THE INVENTION 



[0010] The present invention provides methods and 
apparatus for upgrading firmware in an embedded sys- 
tem, without impacting the system. More specifically, the s 
present invention enables an embedded system to be 
upgraded without any system downtime, by providing 
two application areas In non-volatile programmable 
read only memory. A processor can boot up and run from 
either application area. A fixed vector table is provided, io 
which, in cooperation with a software vector table, ena- 
bles the processor to maintain proper interrupt vector 
addresses while being able to run from either application 
area. Upgraded firmware can be loaded Into one appli- 
cation area while the system is running from the other is 
application area. Resetting the processor allows the 
system to run the upgraded version of finmware. 
[0011] In an example embodiment of the invention, a 
processor may be provided for use in an embedded sys- 
tem. A non-volatile programmable read only memory 20 
device may be provided which has a fixed vector table, 
a boot area for storing boot code, a first application area 
for storing firmware, and a second application area for 
storing firmware. A random access memory device 
(RAM) may be provided having a software vector table 25 
and a RAM application area. The fixed vector table may 
be programmed with a reset vector address and inter- 
rupt vector addresses. The reset vector address may 
point to the boot code in the boot area and the interrupt 
vector addresses may point to con^esponding interrupt 30 
vector addresses in the software vector table. An up- 
graded version of firmware may be loaded into one of 
the first application area or the second application area. 
After the updated version of firmware is loaded, the 
processormay be reset in order to run the upgraded ver- 35 
sion of firmware. The software vector table may be filled 
with proper con^esponding interrupt vector addresses 
for the interrupt vectors contained in the fixed vector ta- 
ble, as determined by the upgraded version of firmware. 
[0012] The non-volatile programmable read only 4o 
memory device may comprise a flash electrically eras- 
able programmable read only memory device (FLASH). 
Those skilled in the art will recognize that other suitable 
types of non-volatile programmable read only memory 
devices may be utilized to the same effect. 45 
[0013] A prior version of fimiware may be running 
from one application area while the upgraded version of 
finnware is being loaded into the other application area. 
[0014] An erasable programmable memory device 
(EPROM) or similar device may be provided which is so 
used to determine the application area to be accessed 
after the resetting step. 

[0015] The RAM application area may be loaded with 
data from the application area having the upgraded ver- 
sion of firmware. 55 
[0016] The first application area may contain a first 
version of fimiware and the second application area 
may contain a second version of finmware. The updated 



version of firmware may be loaded into either application 
area. The application area that doesnot receive the up- 
dated version of finnware may be used to store abackup 
copy of fimiware. For example, the old version of 
finnware may be left in this application area, or this ap- 
plication area can subsequently be updated to so that 
the firmware in both application areas is the same. 
[0017] In a preferred embodiment of the invention, the 
processor, the non-volatile programmable read only 
memory device, and the RAM are all provided in the 
fonn of a single integrated circuit. 

BRIEF DESCRIPTION OF THE DRAWINGS 
[0018] 

FIG. 1 is a block diagram of an illustrative embodi- 
ment of the invention; 

FIG. 2 is a block diagram of an Illustrative embodi- 
ment of the non-volatile programmable read only 
memory device and the random access memory de- 
vice of the invention; and 

FIG. 3 is a block diagram of a prefen-ed embodiment 
of the invention. 

DETAILED DESCRIPTION OF THE INVENTION 



[0019] An illustrative embodiment of the Invention is 
shown in Figure 1 . A processor 20 is provided for use 
in an embedded system 10. A non-volatile programma- 
ble read only memory device 30 has a fixed vector table 
32, a boot area 34 for storing boot code, a first applica- 
tion area 36 for storing finnware. and a second applica- 
tion area 38 for storing finnware. A random access 
memory device (RAM) 40 Includes a software vector ta- 
ble 42 and a RAM application area 44. The fixed vector 
table 32 may be programmed with a reset vector ad- 
dress and interrupt vector addresses. The reset vector 
address points to the boot code in the boot area 34 and 
the interrupt vector addresses points to corresponding 
interrupt vector addresses in the software vector table 
42. An upgraded version of finnware may be loaded into 
one of the first application area 36 or the second appli- 
cation area 38 of the programmable memory 30. After 
the updated version of finnware is loaded, the processor 
20 may be reset in order to run the upgraded version of 
finnware. The software vector table 42 of RAM 40 is pro- 
vided with proper conresponding interrupt vector ad- 
dresses for the interrupt vectors contained in the fixed 
vector table 32, as determined by the upgraded version 
of firmware. 

[0020] The non-volatile programmable read only 
memory device 30 may comprise a flash electrically 
erasable programmable read only memory device 
(FLASH). Those skilled in the art will recognize that oth- 
er suitable types of non-volatile programmable read only 
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memory devices may be utilized to the same effect. 
[0021] A prior version of firmware may be running 
from one application area while the upgraded version of 
fimnware is being loaded into the other application area. 
[0022] An erasable programmable memory device 5 
(EPROM) 50 or similar device may be provided for use 
In determining the application area to be accessed after 
the resetting step. 

[0023] The RAM application area 44 may be loaded 
with data from the application area having the upgraded w 
version of firmware. 

[0024] The first application area 36 of programmable 
memory 30 may contain a first version of finmware and 
the second application area 38 may contain a second 
version of firmware. The updated version of firmware is 
may be loaded Into either application area. The applica- 
tion area that does not receive the updated version of 
finmware may be used to store a backup copy of 
firmware. For example, the old version of fimnware may 
be left in this application area, or this application area so 
can subsequently be updated so that the fimnware in 
both application areas is the same. 
[0025] Figure 2 is a block diagram example of the con- 
tents of the non-volatile programmable read only mem- 
ory device 30 and the RAM 40 of Figure 1. Figure 2 25 
shows the non-volatile programmable read only memo- 
ry device as FLASH 31 . The available FLASH 31 mem- 
ory areas are separated into two equally sized applica- 
tion areas, i.e., first application area 37 and second ap- 
plication area 39. The remaining FLASH space Is divid- 30 
ed Into a fixed vector table 33 and a boot code area 35. 
The RAM 41 Is separated into a software vector table 
43 and an application area 45. 

[0026] The fixed vector table 33 of FLASH 3 1 1s shown 
as having addresses 0x00000000 through 35 
0x00001 FFF. The boot area 35 is shown as having ad- 
dresses 0x00002000 through OxOOOOFFFR The first ap- 
plication area 37 is shown as having addresses 
0x0001 0000 through 0x0003FFFF. The second applica- 
tion area 39 is shown as having addresses 0x00040000 
through 0x0006FFFF. 

[0027] The software vector table 43 of RAM 41 is 
shown as having addresses Ox0003F9800 through 
0x0003F987R The RAM application area is shown as 
having addresses 0x3F9880 through 0x003FFFFF. It ^5 
should be appreciated by those skilled In the art that the 
foregoing description of the addresses assigned to each 
respective component (I.e., FLASH 31 and RAM 41) Is 
for purposes of illustration only. Any set of addresses 
may be provided to each respective component as is so 
well known in the art. 

[0028] The fixed vector table 33 will be filled with ad- 
dresses of the software vector table 43. Each software 
vector address may be in multiples of four. By providing 
the software vector table 43, the fixed vector table 33 In ss 
FLASH 31 can be programmed once and will never 
change. Each address in the fixed vector table 33 will 
point to an address in the software vector table 43. This 
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will be true in the case of all the vectors except the reset 
vector. The reset vector will point to tfie boot area 35. 
Upon receiving a reset vector, the code will jump to "the 
reset vector which will jump to the boot area 35 and ex- 
ecute the code to reset the module and initialize the sys- 
tem. As a part of the system initialization, the firmware 
will decide which bank of the application FLASH 37, 39 
to use. Once that decision is made, the firmware will fill 
the software vector table 43 with the proper addresses 
of all the remaining interrupt vectors. Once this is com- 
pleted, the system will njn the selected fimnware and the 
interrupt vectors will point to their proper intermpt serv- 
ice routines. 

[0029] Figure 2 also shows an example of a typical 
interrupt scenario. The fixed vector table 33 is shown as 
having contiguous Interrupt vectors (e.g., 0x00000400, 
0x00000500, and 0x00000600). When an inten-upt. 
such as an external reset, is recognized by the proces- 
sor, the processor stops what it Is doing and obtains the 
next Instruction from, for example, address 
0x00000500, as indicated by the interrupt. As shown by 
arrow 60, the instruction coded in address 0x00000500 
will be a branch to a corresponding location in software 
vector table 43, which in this case is Ox003F9814. If the 
first application area 37 loaded software vector table 43 
location 0x003F9814, it could toad that location with yet 
another branch instruction to a location within the first 
application area 37 as shown by arrow 62, e.g., location 
0x00104008. If, on the other hand, the second applica- 
tion area 39 loaded software vector table 43 location 
0x003F9814. this location could contain, for example, a 
branch to second application area 39 location 
0x0040401 C, as shown by arrow 64. 
[0030] In a preferred embodiment of the invention as 
shown in Figure 3, the processor 100, the non-volatile 
programmable read only memory device 31 (shown as 
FLASH in Figure 3), and the RAM 41 are all provided in 
the form of a single integrated circuit (e.g.. processor 
100). For example, Motorola processor part no. 
MPC555 contains two banks of FLASH able to be read 
from and written to at the same time and a bank of RAM 
which can hold the appropriate amount of data needed 
to Implement the present invention. The FLASH and 
RAM can be further segmented as described above to 
provide the functionality of the present invention in a sin- 
gle part. 

[0031] It should now be appreciated that the present 
invention provides advantageous methods and appara- 
tus for upgrading firmware in an embedded system with- 
out impacting the system. The present invention is par- 
ticularly useful when upgrading an embedded system 
utilizing a fixed vector table. Further, the present inven- 
tion is particularly useful when upgrading system 
firmware while the system is running. 
[0032] Although the invention has been described in 
connection with various illustrated embodiments, nu- 
merous modifications and adaptations may be made 
thereto without departing from the spirit and scope of 
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1. A method for upgrading firmware in an embedded 
system, comprising the steps of: 

providing a processor; 

providing a non-volatile programmable read 
only memory device having a fixed vector table, 
a boot area for storing boot code, a first appli- 
cation area for storing firmware, and a second 
application area for storing firmware; 
providing a random access memory device 
(RAM) having a software vector table and a 8. 
RAM application area; 

programming the fixed vector table with a reset 
vector address and interrupt vector addresses, 
said reset vector address pointing to the boot 
code in said boot area and said interrupt vector 
addresses pointing to corresponding interrupt 
vector addresses in the software vector table; 
loading an upgraded version of firmware into 
one of the first application area or the second 
application area; 

resetting the processor to run the upgraded ver- 
sion of firmware; and 

filling the software vector table with proper cor- 
responding Interrupt vector addresses for the 30 
interrupt vectors contained in the fixed vector 
table as determined by the upgraded version of 
finmware. 

!. A method in accordance with claim 1 , wherein the 35 
non-volatile programmable read only memory de- 
vice comprises a flash electrically erasable pro- 
grammable read only memory device (FLASH). 

. A method in accordance with claim 1 or 2, wherein <o 
a prior version of firmware is running from one ap- 
plication area while the upgraded version of 
finnware is being loaded into the other application 
area. 

45 

. A method in accordance with one of claims 1 to 3, 
further comprising: 

providing an erasable programmable memory 9. 

device (EPROM) which is used to detennine so 
which application area will be accessed after 
the resetting step. 

A method in accordance with one of claims 1 to 4, 10 
further comprising: ss 

loading the RAM application area with data 
from the application area having the upgraded 
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version of finmware. 



A method In accordance with one of clainns 1 to 5. 
wherein: 

the first application area contains a first version 
of firmware; and 

the second application area contains a second 
version of firmware. 

A method in accordance with one of claims 1 to 6, 
wherein said processor, said non-volatile program- 
mable read only memory device, and said RAM are 
all provided in the form of a single integrated circuit. 

An upgradable embedded system apparatus, com- 
prising: 

a processor; 

a non-volatile programmable read only memory 
device having a fixed vector table, a boot area 
for storing boot code, a first application area for 
storing firmware, and a second application area 
for storing firmware; and 
a random access memory device (RAM) having 
a software vector table and a RAM application 
area; 

wherein: 

the fixed vector table is programmed with a re- 
set vector address and interrupt vector ad- 
dresses, said reset vector address pointing to 
the boot code in said boot area and said inter- 
rupt vector addresses pointing to correspond- 
ing interrupt vector addresses in the software 
vector table; 

an upgraded version of firmware is loaded into 
one of the first application area or the second 
application area; 

the processor is reset to run the upgraded ver- 
sion of firmware; and 

the software vector table is filled with proper 
corresponding interrupt vector addresses for 
the interrupt vectors contained in the fixed vec- 
tor table as detemiined by the upgraded ver- 
sion of firmware. 

Apparatus In accordance with claim 8. wherein the 
non-volatile programmable read only memory de- 
vice comprises a flash electrically erasable pro- 
grammable read only memory device (FLASH). 

Apparatus in accordance with claim 8 or 9, wherein 
a prior version of firmware is running from the one 
application area while the upgraded version of 
fimnware Is being loaded into the other application 
area. 
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11. Apparatus in accordance with one of claims 8 to 10, 
further comprising: 

an erasable programmable memory device 
(EPROM) which Is used to detennlne which ap- s 
plication area will be accessed after the reset- 
ting step. 

1 2. Apparatus in accordance with one of claims 8 to 11 , 
wherein: io 



the RAM application area is loaded with data 
from the application area having the upgraded 
version of firmware. 

15 

13. Apparatus in accordance with one of claims 8 to 12. 
wherein: 



the first application area contains a first version 
of firmware; and 20 
the second application area contains a second 
version of firmware. 



1 4. Apparatus in accordance with one of claims 8 to 1 3, 
wherein said processor, said non-volatile program- 25 
mable read only memory device, and said RAiVI are 
all provided In the fonn of a single integrated circuit. 
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(57) The present invention provides methods and 
apparatus for upgrading fimiware in an embedded sys- 
tem, without impacting the system. More specifically, the 
present invention enables an embedded system to be 
upgraded without any system downtime, by providing 
two application areas in non-volatile programmable 
read on ly memory. A processor can boot up and m n from 
either application area A fixed vector table is provided, 
which, in cooperation with a software vector table, ena- 
bles the processor to maintain proper interrupt vector 
addresses while being able to mn from either application 
area. Upgraded finnware can be loaded into one appli- 
cation area while the system is running from the other 
application area. Resetting the processor allows the 
system to run the upgraded version of firmware. 
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